Call from unknown number claiming to be my bank. I ask them to prove who they are. They apparently don't have a standard procedure for that?
12
2
6
@simonw they asked ME how I would like to proceed with the verification. It turned out they really were my bank
6
3
@simonw That's more than just a small bit of FAIL. I would seriously reconsider my banking choice as authentication is a priority-one issue
1
Replying to @sammachin
@sammachin @simonw Surely there should be a plan in play for "reverse" authentication? This is not an uncommon. SMS codes, etc. are in play.

Apr 19, 2016 · 3:44 PM UTC

2
This tweet is unavailable
@sammachin @simonw yep the bank SMSs you a code. But the point is that you don't disclose any private information to them including phone.
1
1
This tweet is unavailable
@sammachin true! Far from a true solution and certainly ripe for abuse. At least there's some awareness authentication is multi-directional.
1
1